> ## Documentation Index
> Fetch the complete documentation index at: https://docs.anchorage.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Connect your harness

> Connect an agent that runs in a harness like OpenClaw or Hermes, on a server with no browser, using an agent API key.

Your agent runs in a harness like OpenClaw or Hermes, on a server or a Mac mini with no browser. Without a browser on that machine, the harness can't complete the OAuth consent that [connecting an agent](/agentic-banking/guides/connect-an-agent) normally uses, so it connects with an agent API key instead: you mint the key once, on any device with a browser, and the harness presents it on every request. If a person can approve the connection from another device, some harnesses can use OAuth consent instead; see [API key or OAuth consent on another device](#api-key-or-oauth-consent-on-another-device).

## Prerequisites

* An agent created on the **Agents** page.
* A device with a browser for the one-time setup. It doesn't have to be the machine the harness runs on.
* For the first paid call only: a funded balance, and an active budget for the agent. Creating the agent on the **Agents** page sets up its budget. The harness can connect and introspect before the balance is funded.

## Mint a key

1. On a device with a browser, open the agent's page from **Agents** at [agentic.anchorage.com](https://agentic.anchorage.com).
2. Under **API keys**, enter a label that names where the key will live, such as `mac-mini`, and select **Mint key**.
3. Copy the key while the page shows it. It starts with `agentic_ak_`, and the page never shows it again.

Give each machine its own key, so you can revoke one without touching the others. For how long a key lasts and how many an agent can hold, see [Authorization model](/agentic-banking/concepts/agents#authorization-model).

## Put the key where the harness reads secrets

Store the key where the harness's process reads secrets, for example an environment variable such as `AGENT_API_KEY`. Keep it out of source control and logs: anyone who holds the key can spend from the agent's budgets.

## Point the harness at the MCP endpoint

Add Anchorage Agentic Banking to the harness as an MCP server, using the endpoint URL shown on the **Agents** page, and have it send the key as a bearer token on every request:

```
Authorization: Bearer $AGENT_API_KEY
```

No sign-in step follows. The key authenticates as the agent, acting for its user, with the same budgets and crypto payment tools an OAuth session gets.

To also run paid inference through the harness, add the inference endpoint as a custom model provider with the same key; the Inference page's **Connect your harness** card shows the block for OpenClaw, Hermes, and other OpenAI-compatible harnesses. See [Call a model](/agentic-banking/guides/call-a-model).

## Make the first calls

1. Have the agent introspect its identity first, to learn which budgets it may pay from; see [Authorization model](/agentic-banking/concepts/agents#authorization-model).
2. Have the agent pay a paid URL from one of those budgets. It can [price the URL first](/agentic-banking/concepts/payments#cost-estimates) without paying. To find the payment afterward, see [Where agent activity appears](/agentic-banking/concepts/agents#where-agent-activity-appears).

## API key or OAuth consent on another device

Both can connect the harness as the same agent. Pick by whether a person can finish a sign-in:

* **Use an API key** when no one can sign in for the agent, such as a harness that runs unattended or restarts on its own, or a service that must reconnect without anyone present.
* **Use OAuth consent on another device** when a person can approve the connection from a phone or laptop. Some harnesses support this; OpenClaw, for example, shows a sign-in link to open on another device and then asks you to paste back the address your browser lands on. The consent screen lets you pick any of your agents or create one, so pick the same agent to keep its budgets and payment history. A person has to approve a new connection from time to time, because the session ends 90 days after it starts, or after 14 days without use once the harness has used it.

## Stop the agent

To cut off one machine, revoke its key on the agent's page. The key stops working on its next request. To stop the agent everywhere, select **Deactivate** on the agent's page, which ends every key and session it has at once; see [Stopping a runaway agent](/agentic-banking/concepts/agents#stopping-a-runaway-agent).


## Related topics

- [Connect an agent](/agentic-banking/guides/connect-an-agent.md)
- [Changelog](/agentic-banking/changelog.md)
- [Call a model](/agentic-banking/guides/call-a-model.md)
- [Connect your AI assistant](/knowledge-base/porto/build-with-ai/connect-ai-assistant.md)
